SASL/Kerberos5 question

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



koniczynek wrote:
> Hello,
> I'm fairly new to the FDS (one week maybe). Earlier I've been using
> OpenLDAP and now I want to migrate from OL to FDS. Everything looks
> great (schema conversion and ldif transfer) but I have one problem. Old
> setup was constructed more or less that the passwords weren't stored in
> LDAP but in Kerberos and in 'userPassword' field in clear text was
> 'uid at REALM.INT'
> Now when using FDS I can't find any configuration option, that would
> make it possible to use Kerberos for storing passwords and still to use
> FDS to authenticate user. Maybe SASL Mappings are for that and you only
> have to configure them right.
Right.  For clients that can do SASL/GSSAPI BIND (i.e. Kerberos), you 
just need to configure the SASL Mapping to find the user's DN based on 
the Kerberos principal.

For clients that cannot use SASL but must use simple username/password 
bind, you can use the PAM passthrough plug-in.
> Is there anyone who knows how to do it?
> Thanks in advance.
>
>   
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3178 bytes
Desc: S/MIME Cryptographic Signature
Url : http://lists.fedoraproject.org/pipermail/389-users/attachments/20061117/cce46da0/attachment.bin 


[Index of Archives]     [Fedora User Discussion]     [Older Fedora Users]     [Fedora Announce]     [Fedora Package Announce]     [EPEL Announce]     [Fedora News]     [Fedora Cloud]     [Fedora Advisory Board]     [Fedora Education]     [Fedora Security]     [Fedora Scitech]     [Fedora Robotics]     [Fedora Maintainers]     [Fedora Infrastructure]     [Fedora Websites]     [Anaconda Devel]     [Fedora Devel Java]     [Fedora Legacy]     [Fedora Desktop]     [Fedora Fonts]     [ATA RAID]     [Fedora Marketing]     [Fedora Management Tools]     [Fedora Mentors]     [Fedora Package Review]     [Fedora R Devel]     [Fedora PHP Devel]     [Kickstart]     [Fedora Music]     [Fedora Packaging]     [Centos]     [Fedora SELinux]     [Fedora Legal]     [Fedora Kernel]     [Fedora QA]     [Fedora Triage]     [Fedora OCaml]     [Coolkey]     [Virtualization Tools]     [ET Management Tools]     [Yum Users]     [Tux]     [Yosemite News]     [Yosemite Photos]     [Linux Apps]     [Maemo Users]     [Gnome Users]     [KDE Users]     [Fedora Tools]     [Fedora Art]     [Fedora Docs]     [Maemo Users]     [Asterisk PBX]     [Fedora Sparc]     [Fedora Universal Network Connector]     [Fedora ARM]

  Powered by Linux